Encrypted Volume and File System v1.1 Administrator's Guide

Index
A
AES (Advanced Encryption Standard), 169
configuring for a volume , 53
configuring the default algorithm for volumes , 42
supported key lengths , 17
assigning a new owner to a volume, 86
authorized user keys , 24
capabilities, 24
displaying the authorized user keys IDs for a volume,
131
autostart
configuring, 62, 72
B
backing up EVFS volumes, 102, 105, 121
nonmirrored volumes, 121
online
with LVM mirrors, 105
with VxVM mirrors, 112
backup data
restoring, 125
boot disk
restrictions, 51, 66
boot_local flag, 41, 62, 72
boot_local2 flag, 41, 62, 72
boot_remote flag, 41, 63, 73
bpd (number of data blocks decrypted), 131
bpe (number of data blocks encrypted), 131
bpr (data blocks read), 131
bpw (data blocks written), 131
C
changing owner keys, 86
cluster key pair
creating, 159
definition, 159
installing on adoptive nodes, 161
collecting data, 139
commands
EVFS, 25
configuration
examples, 47
D
daemon
evfsevold, 80
data blocks read (bpr), 131
data blocks written (bpw), 131
decryption
statistics, 131
decryption throughput (dkbps), 131
device special files
for EVFS, 52
digest (message digest) algorithm
displaying, 132
dirty bit, 138
resetting, 106, 107, 109, 113, 115, 117
disabling
access to EVFS volumes, 81
displaying
volume information, 130
dkbps (decryption throughput), 131
E
ekbps (encryption throughput), 131
EMD
allocating space for, 51
creating, 52
definition, 20
destroying, 90, 149
displaying information about, 84
displaying the size of the EMD for a volume, 132
recovering, 89
verifying, 133
enabling EVFS for a volume, 54, 149
encryption
statistics, 131
verifying, 59, 69
encryption algorithm
configuring default for EVFS volumes, 42
configuring for a volume, 53
displaying, 132
encryption metadata (see EMD)
encryption throughput (ekbps), 131
envelopes (see key records)
error messages
cannot retrieve private key, 136
cannot store public key, 135
EMD is dirty, 138
evol busy, 137
key loading failure, 135, 136
map error, 137
not found in /etc/evfs/evfstab file, 136
valid EMD already exists, 136
/etc/evfs/evfs.conf file, 39, 42
/etc/evfs/evfstab, 62, 72
/etc/evfs/pkey directory, 39
/etc/fstab file, 57
/etc/rc.config.d/evfs, 62, 72
evfs
pseudo-user account, 37
EVFS commands, 25, 149–151
EVFS volumes
reporting the names of, 130
reporting the number of, 130
reporting the states of, 130
evfsadm
map command, 51, 149
start command, 43, 80, 149
stat command, 59, 69, 130, 151
stop command, 82, 149
171